Vulnerabilities > Earl Miles > Views > 6.x.2.11

DATE CVE VULNERABILITY TITLE RISK
2012-02-17 CVE-2011-4113 SQL Injection vulnerability in Earl Miles Views
SQL injection vulnerability in the Views module before 6.x-2.13 for Drupal allows remote attackers to execute arbitrary SQL commands via vectors related to "filters/arguments on certain types of views with specific configurations of arguments."
network
low complexity
earl-miles drupal CWE-89
7.5
2010-12-23 CVE-2010-4521 Cross-Site Scripting vulnerability in Earl Miles Views
Cross-site scripting (XSS) vulnerability in the Views module 6.x before 6.x-2.12 for Drupal allows remote attackers to inject arbitrary web script or HTML via a page path.
4.3